First published: Tue Jun 23 2020(Updated: )
The driver in IOBit Unlocker 1.1.2 allows a low-privileged user to unlock a file and kill processes (even ones running as SYSTEM) that hold a handle, via IOCTL code 0x222124.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Iobit Iobit Unlocker | =1.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-14974 is high with a severity value of 7.1.
IOBit Unlocker 1.1.2 is affected by CVE-2020-14974.
A low-privileged user can use CVE-2020-14974 to unlock a file and kill processes, even ones running as SYSTEM, that hold a handle.
To fix CVE-2020-14974, it is recommended to update to the latest version of IOBit Unlocker.
You can find more information about CVE-2020-14974 at the following references: - [The Evil Bit Blog](https://theevilbit.github.io/posts/) - [IOBit Unlocker Official Website](https://www.iobit.com/en/iobit-unlocker.php)